Current:Home > InvestMarriott agrees to pay $52 million, beef up data security to resolve probes over data breaches -Aspire Money Growth
Marriott agrees to pay $52 million, beef up data security to resolve probes over data breaches
View
Date:2025-04-14 19:50:51
Marriott International has agreed to pay $52 million and make changes to bolster its data security to resolve state and federal claims related to major data breaches that affected more than 300 million of its customers worldwide.
The Federal Trade Commission and a group of attorneys general from 49 states and the District of Columbia announced the terms of separate settlements with Marriott on Wednesday. The FTC and the states ran parallel investigations into three data breaches, which took place between 2014 and 2020.
As a result of the data breaches, “malicious actors” obtained the passport information, payment card numbers, loyalty numbers, dates of birth, email addresses and/or personal information from hundreds of millions of consumers, according to the FTC’s proposed complaint.
The FTC claimed that Marriott and subsidiary Starwood Hotels & Resorts Worldwide’s poor data security practices led to the breaches.
Specifically, the agency alleged that the hotel operator failed to secure its computer system with appropriate password controls, network monitoring or other practices to safeguard data.
As part of its proposed settlement with the FTC, Marriott agreed to “implement a robust information security program” and provide all of its U.S. customers with a way to request that any personal information associated with their email address or loyalty rewards account number be deleted.
Marriott also settled similar claims brought by the group of attorneys general. In addition to agreeing to strengthen its data security practices, the hotel operator also will pay $52 million penalty to be split by the states.
In a statement on its website Wednesday, Bethesda, Maryland-based Marriott noted that it made no admission of liability as part of its agreements with the FTC and states. It also said it has already put in place data privacy and information security enhancements.
In early 2020, Marriott noticed that an unexpected amount of guest information was accessed using login credentials of two employees at a franchised property. At the time, the company estimated that the personal data of about 5.2. million guests worldwide might have been affected.
In November 2018, Marriott announced a massive data breach in which hackers accessed information on as many as 383 million guests. In that case, Marriott said unencrypted passport numbers for at least 5.25 million guests were accessed, as well as credit card information for 8.6 million guests. The affected hotel brands were operated by Starwood before it was acquired by Marriott in 2016.
The FBI led the investigation of that data theft, and investigators suspected the hackers were working on behalf of the Chinese Ministry of State Security, the rough equivalent of the CIA.
veryGood! (94)
Related
- Gen. Mark Milley's security detail and security clearance revoked, Pentagon says
- TSA unveils passenger self-screening lanes at Vegas airport as ‘a step into the future’
- Lawyer who crashed snowmobile into Black Hawk helicopter is suing for $9.5 million
- Biden is hoping to use his State of the Union address to show a wary electorate he’s up to the job
- North Carolina justices rule for restaurants in COVID
- North Carolina’s Mark Harris gets a second chance to go to Congress after absentee ballot scandal
- Fed Chair Powell says interest rate cuts won’t start until inflation approaches this level
- Minnesota Rep. Dean Phillips ends Democratic primary challenge and endorses President Joe Biden
- Buckingham Palace staff under investigation for 'bar brawl'
- U.N. says reasonable grounds to believe Hamas carried out sexual attacks on Oct. 7, and likely still is
Ranking
- Trump wants to turn the clock on daylight saving time
- House passes government funding package in first step toward averting shutdown
- Black Keys, Dave Grohl, Tom Morello to perform at NY concert: How to watch online for $20
- Celebrate National Dress Day with Lulus’ Buy 3-Get-1 Free Sale, Featuring Picks as Low as $19
- The city of Chicago is ordered to pay nearly $80M for a police chase that killed a 10
- Millie Bobby Brown Goes Makeup-Free and Wears Pimple Patch During Latest Appearance
- Nebraska’s new law limiting abortion and trans healthcare is argued before the state Supreme Court
- American Express card data exposed in third-party breach
Recommendation
What do we know about the mysterious drones reported flying over New Jersey?
Georgia bill would punish cities and counties that break law against ‘sanctuary’ for immigrants
Dairy Queen free cone day is coming back in 2024: How to get free ice cream in March
LNG Exports from Mexico in Limbo While Pipeline Project Plows Ahead
Appeals court scraps Nasdaq boardroom diversity rules in latest DEI setback
Concacaf Champions Cup Bracket: Matchups, schedule for round of 16
Biden to call in State of the Union for business tax hikes, middle class tax cuts and lower deficits
SEC approves rule that requires some companies to publicly report emissions and climate risks